author/C=EU/ST=EU/CN=Pablo Neira Ayuso/ </C=EU/ST=EU/CN=Pablo Neira Ayuso/>2008-04-16 14:54:24 +0000
committer/C=EU/ST=EU/CN=Pablo Neira Ayuso/ </C=EU/ST=EU/CN=Pablo Neira Ayuso/>2008-04-16 14:54:24 +0000
commit953bcf62fbd110f63c946905f9642d17b63c50cf (patch)
tree7ac481d0e730acdad4a7e919ebc59d482053d2fe /qa/testsuite/02filter
parentebb9a1aa3813d71b99d7508c88b9cbf525e15b4a (diff)
o fix NAT filtering via --src-nat and --dst-nat (reported by K.Oledzki)
o recover the ID support o show display counters to stderr o enable filtering by status and ID
1 files changed, 20 insertions, 0 deletions
+# create dummy
+conntrack -I -s -d -p tcp --sport 10 --dport 20 --state LISTEN -u SEEN_REPLY -t 50 ; OK
+# filter by source
+conntrack -L -s ; OK
+# filter by destination
+conntrack -L -d ; OK
+# filter by protocol
+conntrack -L -p tcp ; OK
+# filter by status
+conntrack -L -u SEEN_REPLY ; OK
+# filter by TCP protocol state
+conntrack -L -p tcp --state LISTEN ; OK
+# update mark of dummy conntrack
+conntrack -U -s -m 1 ; OK
+# filter by mark
+conntrack -L -m 1 ; OK
+# filter by layer 3 protocol
+conntrack -L -f ipv4 ; OK
+# delete dummy
+conntrack -D -d ; OK